CVE-2008-6402

Muskatli Sofi Webgui < 0.6.3pre - Code Injection

Title source: rule

Description

PHP remote file inclusion vulnerability in hu/modules/reg-new/modstart.php in Sofi WebGui 0.6.3 PRE and earlier allows remote attackers to execute arbitrary PHP code via a URL in the mod_dir parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by dun · textwebappsphp
https://www.exploit-db.com/exploits/6539

Scores

EPSS 0.0234
EPSS Percentile 84.6%

Classification

CWE
CWE-94
Status draft

Affected Products (4)

muskatli/sofi_webgui < 0.6.3pre
muskatli/sofi_webgui
muskatli/sofi_webgui
muskatli/sofi_webgui

Timeline

Published Mar 06, 2009
Tracked Since Feb 18, 2026